cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1645
Views
11
Helpful
3
Replies

Firepower 1010 issue

Hello,

 

I am trying to setup a firepower 1010 device and i have a problem.

 

I have setup the remote access vpn (anyconnect) and it working perfectly. Full tunnel is configured. NAT outside outside for the clients internet etc. However i cannot connect to the firewall management interface (https, ssh, ping are not working). I believe that this is something easy to resolve. Is something that is missing?

 

Thanks in advance.

1 Accepted Solution

Accepted Solutions

@SpyrosStamelos3567 

Unfortunately not, this is still an open bug

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvt73926

 

The TAC workaround is to connect to the outside interface to manage the FTD!!

Alternatively you could use CDO to manage the FTD, at least you don't need to permit access from the entire internet, just the CDO servers.

 

View solution in original post

3 Replies 3

@SpyrosStamelos3567 

Unfortunately not, this is still an open bug

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvt73926

 

The TAC workaround is to connect to the outside interface to manage the FTD!!

Alternatively you could use CDO to manage the FTD, at least you don't need to permit access from the entire internet, just the CDO servers.

 

Thank you Rob,

 

The TAC workaround is for the SSH access as i can see. Is it possible to change the https management port? Because the 443 is already used for the VPN.

@SpyrosStamelos3567 

You can change the port for FDM management (on a data interface) or RAVPN from version 6.7

https://www.cisco.com/c/en/us/td/docs/security/firepower/670/relnotes/firepower-release-notes-670/features.html

 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: